IVS - Confidentiality & NDA Handling

Scope

This SOP applies to all IVS employees, contractors, and temporary staff. It governs the handling of confidential information and Non-Disclosure Agreements (NDAs).


Confidential Information Definition

Confidential information includes, but is not limited to:

  • Client names, contacts, and business details
  • Call recordings, scripts, leads, and CRM data
  • Internal processes, pricing, contracts, and strategies
  • Login credentials, access tokens, API keys
  • Employee data and internal communications
  • Any information explicitly labeled as confidential by IVS or a client

General Confidentiality Rules

  • Confidential information must be used only for work-related purposes
  • Sharing confidential information with unauthorized persons is strictly prohibited
  • Information must not be discussed in public places or unsecured channels
  • Screens must be locked when unattended
  • Work devices and accounts must not be shared

NDA Compliance

  • Employees may be required to sign an NDA before:
    • Client onboarding
    • Campaign assignment
    • System or data access
  • Signing an NDA is mandatory when requested
  • NDA obligations apply during and after employment or engagement
  • Violation of an NDA may result in:
    • Immediate termination
    • Legal action
    • Financial liability

Data Handling & Storage

  • Use only IVS-approved tools, systems, and email accounts
  • Do not download, copy, or store client data on personal devices unless explicitly approved
  • Do not upload IVS or client data to:
    • Personal cloud storage
    • External AI tools
    • Unauthorized platforms
  • Access only data required for your role (“need-to-know” basis)

Communication Rules

  • Client communication must follow approved channels only
  • Do not forward client emails, files, or messages externally
  • Do not screenshot or record internal systems unless approved
  • Social media posting related to clients or IVS operations is prohibited without written approval

Breach & Incident Reporting

  • Any suspected or actual data breach must be reported immediately
  • Report incidents to:
    • Your direct manager
    • HR or Operations team
  • Do not attempt to hide, fix, or bypass a breach independently

Termination & Offboarding Obligations

Upon termination or resignation:

  • All IVS access must be returned or revoked immediately
  • No copies of IVS or client data may be retained
  • Confidentiality obligations remain in effect indefinitely

Enforcement

  • Non-compliance may result in:
    • Disciplinary action
    • Termination
    • Legal consequences
  • Ignorance of this SOP does not exempt responsibility

Acknowledgment

By working with IVS, all employees and contractors acknowledge and agree to comply with this Confidentiality & NDA Handling SOP.

Discard
Save
This page has been updated since your last edit. Your draft may contain outdated content. Load Latest Version

On this page

Review Changes ← Back to Content
Message Status Space Raised By Last update on